db2-rhel

Warn

Audited by Gen Agent Trust Hub on Jun 28, 2026

Risk Level: MEDIUMCREDENTIALS_UNSAFECOMMAND_EXECUTION
Full Analysis
  • [CREDENTIALS_UNSAFE]: The skill includes hardcoded passwords in multiple setup and configuration commands which could lead to weak security if deployed as-is.
  • File install-admin.md: Hardcoded passwords for system users db2inst1 and db2fenc1 using chpasswd.
  • File install-admin.md: Hardcoded password used in the db2 attach command for instance authentication.
  • File security-backup-recovery.md: Hardcoded passwords for keystore creation (Keystore_P@ss!2024) and SSL certificate management (SSL_P@ss!2024).
  • [COMMAND_EXECUTION]: The skill performs numerous administrative tasks requiring high privileges, including system-level modifications.
  • File install-admin.md: Uses sudo for package installation (dnf), user/group management, and modifying kernel parameters via sysctl.
  • File performance-monitoring-rhel.md: Uses sudo for SELinux context management (semanage, restorecon) and network security configuration (firewall-cmd).
  • File security-backup-recovery.md: Writes configuration and unit files directly to /etc/systemd/system/ and /usr/local/bin/.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Jun 28, 2026, 05:51 PM
Security Audit — agent-trust-hub — db2-rhel